CVE-2012-2118
EPSS 2.1%
Description
Format string vulnerability in the LogVHdrMessageVerb function in os/log.c in X.Org X11 1.11 allows attackers to cause a denial of service or possibly execute arbitrary code via format string specifiers in an input device name.
How to fix CVE-2012-2118
To remediate CVE-2012-2118, upgrade the affected package to a fixed version below.
- Debian/xorg-server—upgrade to 2:1.12.1.902-1 or later
Is CVE-2012-2118 being exploited?
Low — EPSS is 2.1%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 2:1.12.1.902-1